Brocade SANnav versions before v2.3.0a do not correctly set permissions on files, including docker files. An unprivileged attacker who gains access to the server can read sensitive information from these files.
History

Thu, 19 Sep 2024 02:30:00 +0000

Type Values Removed Values Added
First Time appeared Brocade
Brocade sannav
CPEs cpe:2.3:a:brocade:sannav:*:*:*:*:*:*:*:*
Vendors & Products Brocade
Brocade sannav
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 18 Sep 2024 23:45:00 +0000

Type Values Removed Values Added
Weaknesses CWE-200

Wed, 18 Sep 2024 22:45:00 +0000

Type Values Removed Values Added
Description  Brocade SANnav versions before v2.3.0a do not correctly set permissions on files, including docker files. An unprivileged attacker who gains access to the server can read sensitive information from these files. Brocade SANnav versions before v2.3.0a do not correctly set permissions on files, including docker files. An unprivileged attacker who gains access to the server can read sensitive information from these files.
Weaknesses CWE-732

cve-icon MITRE

Status: PUBLISHED

Assigner: brocade

Published: 2024-04-19T04:39:17.273Z

Updated: 2024-09-18T22:30:38.120Z

Reserved: 2024-03-22T05:23:33.322Z

Link: CVE-2024-29964

cve-icon Vulnrichment

Updated: 2024-08-02T01:17:58.641Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-04-19T05:15:49.217

Modified: 2024-11-21T09:08:42.797

Link: CVE-2024-29964

cve-icon Redhat

No data.